Malware

Johnnie.10863 malicious file

Malware Removal

The Johnnie.10863 is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Johnnie.10863 virus can do?

  • CAPE extracted potentially suspicious content
  • Authenticode signature is invalid

How to determine Johnnie.10863?


File Info:

name: DFAC4686FD5B8409E5BB.mlw
path: /opt/CAPEv2/storage/binaries/f92484903543d5d3d273e6d965e669e6e0cce87dda1d164c8ae9facea6039667
crc32: 5CA1F8B1
md5: dfac4686fd5b8409e5bbee4e31d5a7ec
sha1: c74b483855234dec0b76de4d3598048634b315fa
sha256: f92484903543d5d3d273e6d965e669e6e0cce87dda1d164c8ae9facea6039667
sha512: 84435e5b43dd77f94594eaf7082e3435cb4e368f4f1b073b3ab5c35ee4a7f624d9b83fec28e967a49d46ba6adac1a265e927844812aa7f561a33ed457bf1f485
ssdeep: 3072:drE34kUenffOfGfn+uPnneXPPmWPPWnPXPOO/3+GGHfHvO2+u2/Wum2WPPeevvXM:HojDuUl
type: PE32 executable (GUI) Intel 80386, for MS Windows
tlsh: T16EE4B3312B7042B2D967C7B014E347636B316DEAA4D0DADE1E9273F7DBB2311451298E
sha3_384: 32477bf084f6ebfb66841cc26df1cd24bb7678c2bc9476015a78d4bce749035f5ab829e48f0c872ae3df6b1a571d9ac2
ep_bytes: ff250020400000000000000000000000
timestamp: 2017-06-08 00:08:47

Version Info:

Translation: 0x0000 0x04b0
Comments: e99609ea-6676-4108-b795-7cff28ac4e50
CompanyName: e99609ea-6676-4108-b795-7cff28ac4e50
FileDescription: e99609ea-6676-4108-b795-7cff28ac4e50
FileVersion: 1.0.0.0
InternalName: WindowsFormsApplication1.exe
LegalCopyright: e99609ea-6676-4108-b795-7cff28ac4e50
LegalTrademarks: e99609ea-6676-4108-b795-7cff28ac4e50
OriginalFilename: WindowsFormsApplication1.exe
ProductName: e99609ea-6676-4108-b795-7cff28ac4e50
ProductVersion: 1.0.0.0
Assembly Version: 1.0.0.0

Johnnie.10863 also known as:

BkavW32.AIDetectMalware.CS
LionicTrojan.Win32.Generic.4!c
MicroWorld-eScanGen:Variant.Johnnie.10863
SkyhighBehavesLike.Win32.Infected.jz
McAfeeArtemis!DFAC4686FD5B
Cylanceunsafe
VIPREGen:Variant.Johnnie.10863
SangforSuspicious.Win32.Save.a
K7AntiVirusTrojan ( 0050c15f1 )
AlibabaTrojan:MSIL/Kryptik.d088d4df
K7GWTrojan ( 0050c15f1 )
Cybereasonmalicious.855234
ArcabitTrojan.Johnnie.D2A6F
BitDefenderThetaGen:NN.ZemsilF.36680.Pm0@aKh6vIp
VirITBackdoor.Win32.Bladabindi.UGC
SymantecML.Attribute.HighConfidence
Elasticmalicious (high confidence)
ESET-NOD32a variant of MSIL/Kryptik.IWM
CynetMalicious (score: 99)
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Johnnie.10863
NANO-AntivirusTrojan.Win32.AntiAV.epwlbk
AvastWin32:Malware-gen
RisingMalware.Obfus/MSIL@AI.100 (RDM.MSIL2:jmWycnoLdNd/XFkjeKhSsg)
EmsisoftGen:Variant.Johnnie.10863 (B)
F-SecureHeuristic.HEUR/AGEN.1307777
ZillyaTrojan.Kryptik.Win32.1227093
SophosMal/Generic-S
IkarusTrojan-Downloader.MSIL.Tiny
JiangminTrojan.Generic.gsxsk
AviraHEUR/AGEN.1307777
Antiy-AVLTrojan/Win32.AntiAV
XcitiumMalware@#2av8jyr9oe8k8
MicrosoftBackdoor:MSIL/Bladabindi
ZoneAlarmHEUR:Trojan.Win32.Generic
GDataMSIL.Trojan.Agent.AUM
GoogleDetected
AhnLab-V3Backdoor/Win32.SpyGate.C1926456
MalwarebytesGeneric.Malware.AI.DDS
PandaTrj/GdSda.A
TencentMalware.Win32.Gencirc.114afa77
YandexTrojan.AntiAV!vkGoEwcAIp0
SentinelOneStatic AI – Malicious PE
MaxSecureTrojan.Malware.300983.susgen
FortinetMSIL/Kryptik.KCT!tr
AVGWin32:Malware-gen
DeepInstinctMALICIOUS
CrowdStrikewin/malicious_confidence_100% (W)

How to remove Johnnie.10863?

Johnnie.10863 removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment